Lemmy.world has been compromised
Lemmy.world has been compromised
Title. Probably best not to go there till its all settled.
Lemmy.world has been compromised
Title. Probably best not to go there till its all settled.
Wow. I doubted you so I checked it out. Pinned posts about federation with threads.net that redirect to lemon party. At least it's some dumbass instead of a malicious actor that was trying to subtly mess with things.
It'll be good to shake all the low hanging security stuff out before election season really kicks off.
I won't check it out, but, wow, the last time I heard about lemon party maybe around 20 years ago.
Whelp. Glad I made an acc on lemme.ee too.
Made accounts on at least 5 instances when I first joined lemmy. Definitely good to have backup.
Plus, when links send you to another instance (happens rather frequently), having an account prevents the blinding light mode flash.
You can also install this userscript to automatically replace links to other instances to the local version on your main instance.
Same here. I got booted from VLemmy when that instance mysteriously went down, and I decided to set up an account here having heard good things about the instance. So far so good, hopefully things get smoothed over soon.
I was on VLemmy as well, but that seems to have just disappeared... I got redirected to a "do you want to buy this domain" page earlier, but now it's back to just not loading.
just made an account, might be my main. we'll see how it pans out.
Finally feeling like I'm back on the Wild West of the internet. Hope lemmy world gets un-lemon partied
Yeah.... It's my main instance. Logged in via the website and it redirects to some nasty NSFW stuff. Another reason I have accounts on different instances. Wonder if vlemmy.net might have also been the victim of whoever is attacking lemmy.world.
Unlikely, as the vlemmy.net admin closed all the donation links.
Oh... Wasn't aware of that fact. That's shitty.
This just gave me the push I needed to get off of lemmy.world; I was alredy considering it anyway because I feel like it's a little too big but now this was that final straw.
It seems like the admin wanted lemmy.world to become "the" Lemmy and the biggest one, and of course that is bound to get it the most attention, which also makes it more susceptible to people that wanna hack it. Yeah..... I'm done. Thank god for federation.
perfect example of bigger might not be better
I left Lemmy.world too and I can't even log back in to my old account to close my subs on that instance on account of the hacking.
That place is sus as fuck and I have strong reasons to think the admins of the place have been compromised. Centralizing people to one instance which defeats the point of federation, beig cagey and dodging the issue when users demanded they defederate from Threads, and then this.
Long live federation and it giving people a choice
We know an issue occurred on the site over an hour ago with someone using my account to redirect the site, make fake posts, and change other settings. The problem has been corrected.
We will continue to monitor the situation and keep you informed.
@MichelleG@lemmy.world (the compromised admin)
Site now has
MichelleG remains compromised. Most Posts don't show up on most pages anymore, the !telaviv@lemmy.world c has a new post "Hack has been fixed." by MichelleG
Well I take it as a good sign for the fediverse. You know you've made it on the world stage when trolls and bad actors actually bother to come poke at your platform.
Yup sadly. They been redirecting to lemon party and some weird video. This is the admin that been hacked:
This has 20 year old script-kiddie anon troll written all over it.
"Har har har they don't like threads so let's troll them by saying we're opening everything up to Threads! I am 1337 haxx0r!"
Which ironically just makes this all feel even more like it did back in the wild west days of the internet lol.
For real. Not some big government-sponsored hacking group subtlety pulling strings in the background or infecting everyone with 0-days. Just some rando who guessed a weak password, having some fun.
Am I the only one who was thinking this had big u/spez energy?
Weird. I wasn't aware that threads.net was able to link to Lemmy yet. I read this morning that all the talk of defederation was preemptive
It can't. Threads still hasn't turned fedration on, and even when it does it's a microblogging site. It won't really interact with Lemmy much. From what I hear that's actually a link to lemonparty anyway. Just somebody trolling for the sake of trolling.
It is preemptive, but the admin from lemmy.world and mastodon.world indicated that they would not defederate preemptively and instead would defederate if they did something. The mere fact that threads exists constitutes doing something as far as I'm concerned which is why I moved over here.
Anyone know if portable identities are on the roadmap?
Just out of curiosity, not because I think you shouldn’t; why do you want portable accounts?
In case for example the instance we use as our main got hacked. Not like that would ever happen tho
First Vlemmy now this! I can't pick any good instances
How do I not go there? Do I need to check every link to make sure the community is not on lemmy.world?
What about communities there? Will they be off-federated?
Seems to be fixed now
My account is still messed up. I can't see any posts either through a browser or Connect.